๐ฆ๐ช
CG
2026-08-24 16:11:07
(14 hours ago)
Web application attack, Automated scan
Web App Attack
Hacking
SQL Injection
๐ซ๐ฎ
payincog
2026-08-24 16:00:37
(14 hours ago)
Date: Aug 24 18:25:44 2026 EAT | Reported IP: 35.201.231.196 mod_security | id: 930130 949110 | TW/p ...
show more
Date: Aug 24 18:25:44 2026 EAT | Reported IP: 35.201.231.196 mod_security | id: 930130 949110 | TW/pay.my_domain/- | Connections: 1 | Blocked: Permanent Block: [LF_MODSEC] | Logs: ; Restricted File Access Attempt; Restricted File Access Attempt; Inbound Anomaly Score Exceeded (Total Score: 5); Inbound Anomaly Score Exceeded (Total Score: 5)
show less
SQL Injection
Brute-Force
Bad Web Bot
๐บ๐ธ
CBJ
2026-08-24 15:43:26
(14 hours ago)
fail2ban: apache-filepath-recon
...
Web App Attack
๐บ๐ธ
RamSet
2026-08-24 15:33:18
(15 hours ago)
[swy] HTTP-Probe on port 443 (via domain). 1 distinct paths probed in 11s. Sustained 2 req/min. Path ...
show more
[swy] HTTP-Probe on port 443 (via domain). 1 distinct paths probed in 11s. Sustained 2 req/min. Paths: /.git/config
show less
Bad Web Bot
Web App Attack
๐ซ๐ท
ELYAZ
2026-08-24 15:29:58
(15 hours ago)
(y3) Failed access -byebye- from 35.201.231.196 (TW/Taiwan/196.231.201.35.bc.googleusercontent.com): ...
show more
(y3) Failed access -byebye- from 35.201.231.196 (TW/Taiwan/196.231.201.35.bc.googleusercontent.com): (CF_ENABLE)
show less
Hacking
๐บ๐ธ
TPI-Abuse
2026-08-24 15:26:41
(15 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.231.196 (196.231.201.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.231.196 (196.231.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 11:26:35.338561 2026] [security2:error] [pid 25720:tid 25720] [client 35.201.231.196:29166] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "globalsolutions.technology"] [uri "/.git/config"] [unique_id "aoxiq_N3z_Xaghcy41LQ5gAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ฌ๐ง
consul.to
2026-08-24 15:25:34
(15 hours ago)
Web attack/malicious scanning detected
Web App Attack
๐บ๐ธ
Starburst SysOp Team
2026-08-24 15:21:57
(15 hours ago)
(mod_security-custom) mod_security (id:210492) triggered by 35.201.231.196 (TW/Taiwan/Taiwan/Taoyuan ...
show more
(mod_security-custom) mod_security (id:210492) triggered by 35.201.231.196 (TW/Taiwan/Taiwan/Taoyuan/196.231.201.35.bc.googleusercontent.com/[AS396982 GOOGLE-CLOUD-PLATFORM]): 1 in the last 3600 secs (0-srv1)
show less
Hacking
๐ต๐ฑ
Budyn
2026-08-24 15:17:16
(15 hours ago)
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit ...
show more
Automated threat detected by Budyn Honeypot Sinkhole. Attack type: CRITICAL: ModSecurity WAF Exploit Block. Malicious scanner triggered a security trap targeting emulated vulnerabilities. Evidence: HOST: astropot.website | URI: /.git/config | UA: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 | BODY: [Empty / GET Request]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-24 13:51:31
(16 hours ago)
(mod_security) mod_security (id:210492) triggered by 35.201.231.196 (196.231.201.35.bc.googleusercon ...
show more
(mod_security) mod_security (id:210492) triggered by 35.201.231.196 (196.231.201.35.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 24 09:51:23.774201 2026] [security2:error] [pid 26629:tid 26656] [client 35.201.231.196:49154] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "keepmamacreekrural.org"] [uri "/.git/config"] [unique_id "aoxMWzaMDXsD7Bzt5EYH4QAAANY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-24 12:17:23
(18 hours ago)
Fuzzing/Looking for credentials files.
Brute-Force
Web App Attack
๐ง๐ช
cmbplf
2026-08-24 11:31:49
(19 hours ago)
321 requests with url.path */.git/config
321 requests with url.path *.git/*
Brute-Force
Bad Web Bot
๐จ๐ฆ
Anytech
2026-08-24 10:57:11
(19 hours ago)
Blocked by ConnMonitor
Web App Attack
๐ฉ๐ช
Blexyel
2026-08-24 10:45:57
(19 hours ago)
35.201.231.196 - - [24/Aug/2026:12:45:56 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 ...
show more
35.201.231.196 - - [24/Aug/2026:12:45:56 +0200] "GET /.git/config HTTP/1.1" 200 265 "-" "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36" "pingusmc.org"
...
show less
Brute-Force
Web App Attack
Anonymous
2026-08-24 10:44:28
(19 hours ago)
2026/08/24 10:39:58 [error] 1274147#1274147: *4240 [client 35.201.231.196] ModSecurity: Access denie ...
show more
2026/08/24 10:39:58 [error] 1274147#1274147: *4240 [client 35.201.231.196] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' ) [file "/usr/local/owasp-modsecurity-crs-4.11.0/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "222"] [id "949110"] [rev ""] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [data ""] [severity "0"] [ver "OWASP_CRS/4.29.0"] [maturity "0"] [accuracy "0"] [tag "anomaly-evaluation"] [tag "OWASP_CRS"] [hostname "idealfmgh.org"] [uri "/.git/config"] [unique_id "178756799851.714536"] [ref ""], client: 35.201.231.196, server: idealfmgh.org, request: "GET /.git/config HTTP/1.1", host: "idealfmgh.org"
2026/08/24 10:39:58 [error] 1274147#1274147: *4241 [client 35.201.231.196] ModSecurity: Access denied with code 403 (phase 2). Matched "Operator `Ge' with parameter `5' against variable `TX:BLOCKING_INBOUND_ANOMALY_SCORE' (Value: `5' ) [file "/usr/local/owasp-mo
...
show less
Brute-Force